Pass the CompTIA CompTIA CASP CAS-005 Questions and answers with CertsForce

Viewing page 7 out of 7 pages
Viewing questions 61-70 out of questions
Questions # 61:

Emails that the marketing department is sending to customers are pomp to the customers' spam folders. The security team is investigating the issue and discovers that the certificates used by the email server were reissued, but DNS records had not been updated. Which of the following should the security team update in order to fix this issue? (Select three.)

Options:

A.

DMARC


B.

SPF


C.

DKIM


D.

DNSSEC


E.

SASC


F.

SAN


G.

SOA


Expert Solution
Questions # 62:

After an incident occurred, a team reported during the lessons-learned review that the team.

* Lost important Information for further analysis.

* Did not utilize the chain of communication

* Did not follow the right steps for a proper response

Which of the following solutions is the best way to address these findinds?

Options:

A.

Requestingbudget for better forensic tools to Improve technical capabilities for Incident response operations


B.

Building playbooks for different scenarios and performing regular table-top exercises


C.

Requiring professional incident response certifications tor each new team member


D.

Publishing the incident response policy and enforcing it as part of the security awareness program


Expert Solution
Questions # 63:

After an incident response exercise, a security administrator reviews the following table:

Question # 63

Which of the following should the administrator do to beat support rapid incident response in the future?

Options:

A.

Automate alerting to IT support for phone system outages.


B.

Enable dashboards for service status monitoring


C.

Send emails for failed log-In attempts on the public website


D.

Configure automated Isolation of human resources systems


Expert Solution
Questions # 64:

Users are experiencing a variety of issueswhen trying to access corporate resources examples include

• Connectivity issues between local computers and file servers within branch offices

• Inability to download corporate applications on mobile endpoints wtiilc working remotely

• Certificate errors when accessing internal web applications

Which of the following actions are the most relevant when troubleshooting the reported issues? (Select two).

Options:

A.

Review VPN throughput


B.

Check IPS rules


C.

Restore static content on lite CDN.


D.

Enable secure authentication using NAC


E.

Implement advanced WAF rules.


F.

Validate MDM asset compliance


Expert Solution
Questions # 65:

An organization is prioritizing efforts to remediate or mitigate risks identified during the latest assessment. For one of the risks, a full remediation was not possible, but the organization was able to successfully apply mitigations to reduce the likelihood of the impact. Which of the following should the organization perform next?

Options:

A.

Assess the residual risk.


B.

Update the organization's threat model.


C.

Move to the next risk in the register.


D.

Recalculate the magnitude of the impact.


Expert Solution
Viewing page 7 out of 7 pages
Viewing questions 61-70 out of questions